exam questions

Exam SC-400 All Questions

View all questions & answers for the SC-400 exam

Exam SC-400 topic 2 question 32 discussion

Actual exam question from Microsoft's SC-400
Question #: 32
Topic #: 2
[All SC-400 Questions]

You have a Microsoft 365 subscription that uses Microsoft Exchange Online.
You need to receive an alert if a user emails sensitive documents to specific external domains.
What should you create?

  • A. a data loss prevention (DLP) policy that uses the Privacy category
  • B. a Microsoft Cloud App Security activity policy
  • C. a Microsoft Cloud App Security file policy
  • D. a data loss prevention (DLP) alert filter
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
xlws
Highly Voted 3 years, 4 months ago
The answer is C, https://docs.microsoft.com/en-us/defender-cloud-apps/data-protection-policies, sharing with external domain.
upvoted 14 times
...
sivis
Highly Voted 3 years, 4 months ago
Selected Answer: D
Correct answer is D Alert can be configured in alert filter. Privacy category is used to choose templates and not alerts
upvoted 13 times
...
Phil_79
Most Recent 2 months ago
Selected Answer: D
Sorry for the "C" party, but data protection policies are for filed "shared" not for file "sent" with email... so in this case a file policy won't fire (see point 7 of this link to look at a the file policy target: https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies#create-a-new-file-policy).
upvoted 1 times
...
JimboJones99
9 months, 1 week ago
Selected Answer: C
https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies#policies
upvoted 1 times
...
JimboJones99
9 months, 1 week ago
Selected Answer: C
https://docs.microsoft.com/en-us/defender-cloud-apps/data-protection-policies
upvoted 1 times
...
RAJRYB
9 months, 3 weeks ago
Selected Answer: C
I will go with C. there is the word "documents", so it will be the file policy
upvoted 1 times
...
EM1234
10 months, 3 weeks ago
Selected Answer: C
I am going with C for the reasons kodoi said. But I am not sure as I do not see what a person who recently scored an 890 would have picked. /s
upvoted 5 times
EsamiTopici
10 months, 3 weeks ago
ahahahha
upvoted 1 times
...
...
SDiwan
1 year, 1 month ago
Selected Answer: C
Documentation from Microsoft Defender for Cloud apps (old name MCAS) . "Sharing with external domains - Receive an alert about any file shared with accounts owned by specific external domains. For example, files shared with a competitor's domain. Select the external domain with which you want to limit sharing." So, correct answer is C https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies
upvoted 2 times
...
Kodoi
1 year, 2 months ago
Selected Answer: C
A is incorrect. Privacy categories detect and protect the type of privacy information; DLP policies restrict the transmission of information to outside parties, but privacy categories are ineligible. B is incorrect. An activity policy cannot specify a domain. It detects multiple failed sign-ins and sign-ins from unfamiliar locations. C is correct. File policy allows you to receive alerts about files shared with accounts owned by a specific external domain. D is incorrect. The alerts displayed on the dashboard are just extracted by specific criteria and displayed in an easy-to-read manner. https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies
upvoted 4 times
...
Softeng
1 year, 2 months ago
Selected Answer: A
It's A: https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies#:~:text=Sharing%20with%20external%20domains%20%2D%20Receive%20an%20alert%20about%20any%20file%20shared%20with%20accounts%20owned%20by%20specific%20external%20domains.%20For%20example%2C%20files%20shared%20with%20a%20competitor%27s%20domain.%20Select%20the%20external%20domain%20with%20which%20you%20want%20to%20limit%20sharing.
upvoted 3 times
...
Elangamban
1 year, 4 months ago
answer is A
upvoted 1 times
...
samrith
1 year, 6 months ago
Community vote D(50%). A(19%) why sugguest answer A
upvoted 1 times
...
TomasValtor
1 year, 6 months ago
Correct answer is A To receive an alert if a user emails sensitive documents to specific external domains in a Microsoft 365 subscription that uses Microsoft Exchange Online, you should create a data loss prevention (DLP) policy that uses the Privacy category.
upvoted 3 times
TomasValtor
1 year, 6 months ago
Option B, a Microsoft Cloud App Security activity policy, is not the correct answer because it is used to monitor and analyze user and admin activity across cloud apps, but it does not specifically monitor email attachments. Option C, a Microsoft Cloud App Security file policy, is not the correct answer because it is used to scan files in cloud storage locations such as OneDrive and SharePoint, but it does not specifically monitor email attachments. Option D, a DLP alert filter, is not the correct answer because it is used to filter the alerts generated by a DLP policy based on specific criteria, but it does not create the initial DLP policy.
upvoted 3 times
TomasValtor
1 year, 6 months ago
To configure the DLP policy to send an alert when a user emails sensitive documents to specific external domains, you can follow these steps: Open the Microsoft 365 compliance center and go to the Data loss prevention page. Click Create a policy to create a new DLP policy. In the Policy settings page, select the Privacy category and choose the sensitive information types that you want to protect. In the Locations section, select the email option to apply the policy to emails. In the Policy tips section, configure the action that you want to take when a sensitive document is detected. For example, you can send an alert to the user, manager, or administrator. In the Policy settings section, select the external domains that you want to monitor. Save the policy and test it to ensure that it is working as expected.
upvoted 4 times
...
...
...
Davidf
1 year, 8 months ago
Selected Answer: A
Only a DLP policy can create an alert. An alert filter just filters existing alerts. File and activity policies don't make sense in this context
upvoted 1 times
...
cris_exam
1 year, 10 months ago
Selected Answer: C
It says specific external domains so I'll go with C. https://learn.microsoft.com/en-us/defender-cloud-apps/data-protection-policies#policies Sharing with external domains - Receive an alert about any file shared with accounts owned by specific external domains. For example, files shared with a competitor's domain. Select the external domain with which you want to limit sharing.
upvoted 3 times
...
doori88
1 year, 10 months ago
its A correct, when you create a DLP policy you can use custom category or the privacy category implied, from there you do not need to set an action rather than sending alert to admin about it
upvoted 2 times
...
AlPL200
1 year, 11 months ago
Why not C?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago